March 18, 2024, 5:52 p.m. | Black Hat

Black Hat www.youtube.com

We will present two new attacks to leak traffic sent by a VPN client. A rogue Wi-Fi network can abuse these vulnerabilities to make the victim leak IP packets, in plaintext, outside the VPN tunnel. The adversary accomplishes this by manipulating the victim's routing table. Our attacks are independent of the VPN protocol being used, meaning they apply to IPsec, OpenVPN, WireGuard, etc....

By: Mathy Vanhoef

Full Abstract and Presentation Materials:
https://www.blackhat.com/eu-23/briefings/schedule/#tunnelcrack-leaking-vpn-traffic-by-manipulating-routing-tables-35013

abuse adversary attacks can client leak network packets plaintext rogue routing tables traffic tunnel tunnelcrack victim vpn vulnerabilities wi-fi

SOC 2 Manager, Audit and Certification

@ Deloitte | US and CA Multiple Locations

Application Security Engineer - Enterprise Engineering

@ Meta | Bellevue, WA | Seattle, WA | New York City | Fremont, CA

Security Engineer

@ Retool | San Francisco, CA

Senior Product Security Analyst

@ Boeing | USA - Seattle, WA

Junior Governance, Risk and Compliance (GRC) and Operations Support Analyst

@ McKenzie Intelligence Services | United Kingdom - Remote

GRC Integrity Program Manager

@ Meta | Bellevue, WA | Menlo Park, CA | Washington, DC | New York City